T08 · Insecure Dependencies
- Location
SKILL.md:14- Finding
Unpinned Package Retrieval and Execution Through npx
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
This skill is clearly aimed at identity-recovery journaling, but it asks agents to save sensitive personal reflections and uses an unpinned installer without enough disclosure or controls.
Install only if you are comfortable with this skill saving sensitive identity and mental-health-related reflections. Before using it, confirm where the saved state will live, how to delete it, and whether reminders can be disabled. Prefer a pinned or verified installer version rather than running the unpinned `npx` command.
SKILL.md:14Unpinned Package Retrieval and Execution Through npx
SKILL.md:45Sensitive Psychological Journal Data Persisted Without Defined Safeguards
The install command uses npx clawhub install identity-rebuild without pinning a specific package version, which means future installs may fetch whatever version is current at execution time. That creates a supply-chain risk: a compromised or malicious upstream release could be executed by users or agents with no integrity guarantee.
The trigger schedule daily at evening is imprecise and does not clearly define when the skill should activate. In a manifest/markdown trigger section, this kind of vague timing can cause inconsistent or unintended invocations because 'evening' varies by user, locale, and system interpretation.
No suspicious patterns detected.